Re: New VNC Attack tutorial

From: Morning Wood (se_cur_ity@hotmail.com)
Date: Thu Jun 22 2006 - 16:31:39 EDT


> Can someone clarify which editions/versions are
> affected? Is it the case that Free edition 4.1.1 and earlier are
> vulnerable, but that 4.1.2 patches the flaw?

At least one specific version not mentioned that is vulnerable is VNC
Enterprise 4.1.3
Further it appears many Darwin x86 vnc installs are either

1. vulnerable
 or
2. do not force password creation on install, but this can neither be
confirmed nor denied.

one more comment on possible vulnerable VNC implimentations, during
penetration testing
for clients I came across dedicated DVR/surveillance systems that come
prepackaged from the
vendor with VNC as the primary form of access to the device / computer. Many
of these were
found vulnerable as well.

cheers,
Donnie Werner

------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security?
Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
Choice Award from eWeek. As attacks through web applications continue to rise,
you need to proactively protect your applications from hackers. Cenzic has the
most comprehensive solutions to meet your application security penetration
testing and vulnerability management needs. You have an option to go with a
managed service (Cenzic ClickToSecure) or an enterprise software
(Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
help you: http://www.cenzic.com/news_events/wpappsec.php
And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request@cenzic.com for details.
------------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:56:09 EDT